Ransom

Generic.Ransom.GlobeImposter.00EF52EA (B) malicious file

Malware Removal

The Generic.Ransom.GlobeImposter.00EF52EA (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.00EF52EA (B) virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Creates a hidden or system file
  • Likely virus infection of existing system binary
  • Creates a copy of itself

How to determine Generic.Ransom.GlobeImposter.00EF52EA (B)?


File Info:

crc32: 1C3BB5CC
md5: b639c1601968df37dcf0e293606482e3
name: B639C1601968DF37DCF0E293606482E3.mlw
sha1: 702e3410af32476148f8625d5851fc39abc5c297
sha256: 26d2bc33e3bd78b5589c321fc66cae27ee6a111a375b62f428d523497f1a6f15
sha512: 92d525edba804c6663a21312287120eecb90139d2f846a961a8a675d59e3aad6966b6f598c65ed389692fc57cb80a2347a4ae4cb6e123c2276786d4f31efe65f
ssdeep: 768:mpeV+GM5lzkfCQxmGgV5YlpJ6RIDWeRdppvO/9rjca9LsUKhnLZb3:mi+Nz5Qxd6m3WIw9gh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.00EF52EA (B) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Ransom.GlobeImposter.00EF52EA
ALYacTrojan.Ransom.GlobeImposter
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.6188
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00518fab1 )
K7GWTrojan ( 00518fab1 )
Cybereasonmalicious.01968d
CyrenW32/Ransom.HD.gen!Eldorado
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Purgen.mm
AlibabaRansom:Win32/Genasom.ali1000102
NANO-AntivirusTrojan.Win32.Purgen.esmnar
ViRobotTrojan.Win32.Ransom.69632.M
AegisLabTrojan.Win32.Purgen.tpXE
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.GlobeImposter.00EF52EA
SophosML/PE-A + Troj/Ransom-EVE
ComodoTrojWare.Win32.Ransom.Purgen.F@7isdzp
DrWebTrojan.Encoder.11539
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FAKEGLOBE.SMA1
EmsisoftGeneric.Ransom.GlobeImposter.00EF52EA (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117723
MAXmalware (ai score=100)
Antiy-AVLTrojan[Ransom]/Win32.Purgen
ArcabitGeneric.Ransom.GlobeImposter.00EF52EA
SUPERAntiSpywareRansom.Purgen/Variant
AhnLab-V3Trojan/Win32.Purgen.R208326
ZoneAlarmTrojan-Ransom.Win32.Purgen.mm
GDataWin32.Trojan-Ransom.GlobeImposter.H
ESET-NOD32a variant of Win32/Filecoder.FV
VBA32BScope.Trojan.Encoder
TACHYONRansom/W32.Purgen.68608.B
MalwarebytesRansom.FileCryptor
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMA1
RisingRansom.Purgen!1.AC62 (CLOUD)
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Filecoder.FV!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Ransom.GlobeImposter.HxMBhDAA

How to remove Generic.Ransom.GlobeImposter.00EF52EA (B)?

Generic.Ransom.GlobeImposter.00EF52EA (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment